First published: Thu Mar 06 2025(Updated: )
A vulnerability classified as problematic has been found in code-projects Blood Bank System 1.0. Affected is an unknown function of the file AB+.php. The manipulation of the argument Bloodname leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Blood Bank System |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-2049 is classified as a problematic vulnerability.
To fix CVE-2025-2049, ensure proper input validation and sanitization for the Bloodname argument in the AB+.php file.
CVE-2025-2049 enables cross-site scripting (XSS) attacks that can be launched remotely.
CVE-2025-2049 affects all versions of the Blood Bank System 1.0.
CVE-2025-2049 impacts an unknown function within the AB+.php file.